Security

Security scanning and vulnerability detection

Showing 2041-2064 of 2326 skills
Hack23

compliance-frameworks

by Hack23

Multi-framework compliance (ISO 27001, NIST CSF, CIS Controls, GDPR, NIS2, EU CRA, SOC 2), control mapping

Code Review 236 6mo ago
mishankov

code-review

by mishankov

Perform comprehensive software code reviews focused on correctness, regressions, security, reliability, performance, and test quality. Use when asked to review pull requests, commits, branches, patches, or source files and deliver prioritized findings with severity, concrete impact, and file/line references.

Code Review 0 6mo ago
pietz

code-audit

by pietz

Structural health assessment for codebases. Use when the user asks to audit code quality, assess code health, review a codebase, find technical debt, clean up code structure, or identify refactoring opportunities. Also use when asked to do a "code audit", "codebase review", "quality assessment", or "tech debt analysis". Provides parallel multi-lens analysis via sub-agents with specialized checklists for code health, cross-module coherence, refactoring detection, and security.

Code Review 0 6mo ago
htooayelwinict

code-review-checklist

by htooayelwinict

Review code changes for correctness, security, performance, and maintainability. Use for PR reviews, code audits, pre-merge checks, or quality validation of Laravel + React + Python code. EXCLUSIVE to reviewer agent.

Code Review 0 7mo ago
rhein1

agoragentic-buzz-signed-workspace-evidence

by rhein1

Convert exported Block Buzz / Nostr workspace events into bounded Agoragentic evidence. Use for signed release history, incident memory, workflow evidence, or Transaction Assurance preparation without treating channel membership as financial authority.

Code Review 36 1mo ago
gajakannan

Quality Engineer Agent

by gajakannan

Opinionated AI‑agent development framework with a reference Insurance CRM implementation.

CI/CD 0 6mo ago
chrbailey

securing-ai-generated-code

by chrbailey

Reviews AI-generated code for security vulnerabilities before commit. Checks for injection flaws, privilege escalation, hardcoded secrets, insecure defaults, and missing input validation. Use when reviewing code written by AI coding agents, after code generation, or before committing AI-assisted changes.

Database 0 6mo ago
danbars

writing-meeting-notes

by danbars

Use when a meeting just occurred and notes need to be turned into a clear summary with decisions, action items, owners, and dates.

Code Gen 0 7mo ago
NguyenMinhGitHub

Solaudit - Smart Contract Security Scanner

by NguyenMinhGitHub

Solidity smart contract security auditor. Detect reentrancy, overflow, access control issues. 50+ vulnerability patterns. CI/CD ready. Free CLI tool.

Security 0 7mo ago
nimeshgurung

information-security-manager-iso27001

by nimeshgurung

Senior Information Security Manager specializing in ISO 27001 and ISO 27002 implementation for HealthTech and MedTech companies. Provides ISMS implementation, cybersecurity risk assessment, security controls management, and compliance oversight. Use for ISMS design, security risk assessments, control implementation, and ISO 27001 certification activities.

Code Review 0 9mo ago
jcastillotx

AWS Penetration Testing

by jcastillotx

This skill should be used when the user asks to "pentest AWS", "test AWS security", "enumerate IAM", "exploit cloud infrastructure", "AWS privilege escalation", "S3 bucket testing", "metadata SSRF", "Lambda exploitation", or needs guidance on Amazon Web Services security assessment.

CLI Tools 0 7mo ago
Hack23

security-by-design

by Hack23

Threat modeling before coding, STRIDE methodology, defense in depth, security controls in SDLC

Auth 236 6mo ago
IHKREDDY

security-scan

by IHKREDDY

Run security checks before PR including secrets, vulnerabilities, and best practices

Code Review 0 8mo ago
kunhai-88

supabase-postgres-best-practices

by kunhai-88

"Supabase 出品的 Postgres 性能优化与最佳实践。在编写、评审或优化 Postgres 查询、表结构设计或数据库配置时使用。"

Database 0 7mo ago
arielperez82

asking-questions

by arielperez82

Guidance for asking clarifying questions when user requests are ambiguous, have multiple valid approaches, or require critical decisions. Use when implementation choices exist that could significantly affect outcomes.

Auth 0 6mo ago
vircung

Elixir Code Review Skill

by vircung

Use this skill to ensure Elixir code meets BEAM VM best practices, security standards, and performance requirements while maintaining the functional programming paradigms that make Elixir powerful.

Code Review 0 7mo ago
bromanko

elm-security-review

by bromanko

This skill should be used when the user asks for "security review", "vulnerability scan", "audit Elm security", "security audit", "find vulnerabilities", "check for security issues", or wants a deep security analysis of Elm code including port safety, JSON decoder validation, and XSS prevention.

Code Review 0 6mo ago
JoseGusnay

angular-enterprise-review

by JoseGusnay

"Professional Code Auditor for Angular Enterprise Architecture. Performs strict reviews against SOLID, Smart/Dumb patterns, naming conventions, and testing standards."

Code Review 0 6mo ago
scottwater

rails-security

by scottwater

"Run a multi-agent security review of Rails application code. Use when the user asks for a Rails security review or audit, or raises a specific concern — authorization/IDOR/tenant isolation, XSS/SQL injection/SSRF, vulnerable gems/Brakeman/bundle audit, or prompt injection in AI features."

Auth 1 29d ago
automindtechnologie-jpg

Burp Suite Web Application Testing

by automindtechnologie-jpg

This skill should be used when the user asks to "intercept HTTP traffic", "modify web requests", "use Burp Suite for testing", "perform web vulnerability scanning", "test with Burp Repeater", "analyze HTTP history", or "configure proxy for web testing". It provides comprehensive guidance for using Burp Suite's core features for web application security testing.

API Dev 0 7mo ago
qingchunwuhui

blind-spot-scanner

by qingchunwuhui

全景盲点扫描仪 - 使用 5W1H 方法强制拷问文档/方案,发现逻辑漏洞和执行盲点。

Code Review 0 6mo ago
Out-treatyofversailles910

grounded-research

by Out-treatyofversailles910

Enforces source-grounded, citation-first research discipline. Use this skill whenever the user asks to research a topic, fact-check a claim, summarize recent findings, look up current information, explain what the evidence says about something, or produce any factual output where accuracy and verifiability matter. Trigger even on conversational phrasing like "what's the deal with X", "is it true that Y", "what do experts say about Z", or "can you check if..." — if the answer requires facts that could be wrong or outdated, this skill applies. When in doubt, use it.

Academic 0 3mo ago
SteveLeve

workers-specialist

by SteveLeve

Provide Cloudflare Workers runtime guidance for routing, bindings, performance, security headers, rate limiting, and Hono patterns used in this repo.

Agents 0 7mo ago
halilugur

spring-boot-ultimate

by halilugur

Spring Boot patterns, best practices, and code generation for REST APIs, JWT authentication, JPA, pagination, and modern Spring Boot development (Java 21+, Spring Boot 4.x)

API Dev 0 7mo ago